IDS
Intrusion Detection System
An IDS monitors network traffic or system activity for signs of malicious behavior and policy violations. It generates alerts when it detects known attack signatures or anomalous patterns but does not block traffic.
Cómo se usa en ciberseguridad
SOC analysts review IDS alerts to identify potential intrusions and correlate them with other telemetry sources. Security engineers tune IDS signatures to match the organization's threat landscape and reduce noise. Penetration testers test IDS evasion techniques to validate detection coverage.
Término relacionado en el glosario: ids
Las definiciones son explicaciones originales escritas con fines de desarrollo profesional. Para definiciones técnicas autorizadas, consulta NIST, ISO o el organismo de normalización correspondiente.